[wp-trac] Re: [WordPress Trac] #10294: CSRF through the img tag

WordPress Trac wp-trac at lists.automattic.com
Wed Jul 1 09:00:44 UTC 2009


#10294: CSRF through the img tag
--------------------------+-------------------------------------------------
 Reporter:  SaltwaterC    |        Owner:  ryan   
     Type:  defect (bug)  |       Status:  closed 
 Priority:  normal        |    Milestone:         
Component:  Security      |      Version:  2.8    
 Severity:  normal        |   Resolution:  invalid
 Keywords:                |  
--------------------------+-------------------------------------------------

Comment(by dd32):

 That will work.

 But its utterly pointless IMO, Why restrict users from posting it in the
 first place? Surely it should be looked at why someones posting it in the
 first place. If someone (or something) wants to post it, they will.

-- 
Ticket URL: <http://core.trac.wordpress.org/ticket/10294#comment:8>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list